Record summary

CVE-2014-1303 has a selected CVSS score of 10.0; EIP currently links 2 catalogued exploits and 1 repository PoC.

Description

Heap-based buffer overflow in Apple Safari 7.0.2 allows remote attackers to execute arbitrary code and bypass a sandbox protection mechanism via unspecified vectors, as demonstrated by Liang Chen during a Pwn2Own competition at CanSecWest 2014.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
2
Repository PoCs
1

Proofs of concept

3

Catalogued exploits

ExploitDBSony Playstation 4 (PS4) < 2.50 - WebKit Code Execution (PoC)ExploitDB exploitby TJ CorleyNot analyzed1 file
ExploitDB

PoC details
ExploitDBWebKitGTK 2.1.2 (Ubuntu 14.04) - Heap based Buffer OverflowExploitDB exploitby Ren KimuraNot analyzed1 file
ExploitDB

PoC details

Repository PoCs

GitHubRKX1209/CVE-2014-1303Repository PoCby RKX1209Stars: 24Not analyzed15 files

113.4 KiB

GitHub

PoC details

References

7